Detecting Certificate Authority compromises and web browser collusion

    Add new comment

    Date: 
    25 March 2011

    The Tor Project has long understood that the certification authority (CA) model of trust on the internet is susceptible to various methods of compromise. Without strong anonymity, the ability to perform targeted attacks with the blessing of a CA key is serious.